Connection settings
Root of the Mycroft marketing deployment. Endpoints live under /api/marketing/.
Sent as Authorization: Bearer <id>:<secret>. Held in
sessionStorage for this tab only, masked on screen and redacted in the log.
It is refused outright if the API base URL is plaintext http:// on a
non-loopback host.
Cloudflare's public site key. The widget renders only once this is set.
Client-side guard so a mis-picked file is caught before the presigned PUT.
Test your app
Upload your Android or iOS binary and we will email you a security assessment
of your latest release. Supported formats: .apk, .aab, .ipa.
Verify your email
We sent a code to . Enter it to continue.
Progress
- Solve challenge
- Verify email
- Get upload URL
- Upload binary
- Create scan request
- Scan
- record_id
- —
- upload_key
- —
- scan_id
- —
Activity log
Every API call, its status and how long it took. The bearer token is never written here.